Okay I now understand why Frank would want to run away, this is
my attempt at fixing the CVE out of bounds access to constants
outside the range. This attempt converts any illegal constants
to constant 0 as per the GL spec, and is undefined behaviour.
A future patch should add some debug for users
On Thu, May 30, 2013 at 4:35 PM, Kenneth Graunke wrote:
> On 05/29/2013 05:44 PM, Dave Airlie wrote:
>>
>> From: Dave Airlie
>>
>> This is my attempt at fixing this as the CVE is making RH security team
>> care enough to make me look at this. (please upstream, security fixes are
>> more important
On 05/29/2013 05:44 PM, Dave Airlie wrote:
From: Dave Airlie
This is my attempt at fixing this as the CVE is making RH security team
care enough to make me look at this. (please upstream, security fixes are
more important than whatever else you are doing, if for no other reason than
it saves me
On 05/29/2013 04:54 PM, Dave Airlie wrote:
From: Dave Airlie
This is my attempt at fixing this as the CVE is making RH security team
care enough to make me look at this. (please upstream, security fixes are
more important than whatever else you are doing, if for no other reason than
it saves me
On 05/29/2013 05:44 PM, Dave Airlie wrote:
From: Dave Airlie
This is my attempt at fixing this as the CVE is making RH security team
care enough to make me look at this. (please upstream, security fixes are
more important than whatever else you are doing, if for no other reason than
it saves me
From: Dave Airlie
This is my attempt at fixing this as the CVE is making RH security team
care enough to make me look at this. (please upstream, security fixes are
more important than whatever else you are doing, if for no other reason than
it saves me having to fix stuff I've no real clue about)
On Thu, May 30, 2013 at 10:21 AM, Eric Anholt wrote:
> Dave Airlie writes:
>
>> From: Dave Airlie
>>
>> This is my attempt at fixing this as the CVE is making RH security team
>> care enough to make me look at this. (please upstream, security fixes are
>> more important than whatever else you ar
Dave Airlie writes:
> From: Dave Airlie
>
> This is my attempt at fixing this as the CVE is making RH security team
> care enough to make me look at this. (please upstream, security fixes are
> more important than whatever else you are doing, if for no other reason than
> it saves me having to f
From: Dave Airlie
This is my attempt at fixing this as the CVE is making RH security team
care enough to make me look at this. (please upstream, security fixes are
more important than whatever else you are doing, if for no other reason than
it saves me having to fix stuff I've no real clue about)